Doomsday: Multiple Vulnerabilities - GLSA 200802-02 Release Date: February 06, 2008 Latest Revision: February 10, 2008: 02 Severity: High Exploitable: Remote Affected Packages Package: games-fps/doomsday on all architectures Affected Versions: <= 1.9.0_beta52 Unaffected Versions: None listed Description Multiple buffer overflows in: function function function Errors in handling: Non-NULL-terminated chat messages (CVE-2007-4642 or CVE-2007-4643) Short data length messages triggering integer underflows (CVE-2007-4643) Format string vulnerability in (CVE-2007-4644) Impact Remote attackers can execute arbitrary code or cause a Denial of Service via crafted messages. Resolution Unmerge Doomsday: References CVE-2007-4642 CVE-2007-4643 CVE-2007-4644